20020422 Re: psyBNC 2.3 DoS / Bugmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-04/0322.html CVE-2002-0741
psyBNC 2.3 - Oversized Passwords Denial of Service
Record summary
CVE-2002-0741 has a selected CVSS score of 5.0; EIP currently links 2 catalogued exploits.
Description
psyBNC 2.3 allows remote attackers to cause a denial of service (CPU consumption and resource exhaustion) by sending a PASS command with a long password argument and quickly killing the connection, which is not properly terminated by psyBNC.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBpsyBNC 2.3 - Oversized Passwords Denial of ServiceExploitDB exploitby DVDMANNot analyzed1 file
ExploitDBpsyBNC 2.3 - Denial of ServiceExploitDB exploitby Lunar FaultNot analyzed1 file
References
520020423 PsyBNC Remote Dos POCmailing list
http://online.securityfocus.com/archive/1/269131 psybnc-long-password-dos(8912)vdb entry
http://www.iss.net/security_center/static/8912.php 4570vdb entry
http://www.securityfocus.com/bid/4570 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-0741